ZeroHour

CVE-2025-66723

PoC
CVSS 3.1
7.5 high
EPSS
<1%p35
Published
()
Modified
Description

inMusic Brands Engine DJ before 4.3.4 suffers from Insecure Permissions due to exposed HTTP service in the Remote Library, which allows attackers to access all files and network paths.

Vendors
inmusicbrands
Products
engine dj desktop
Weakness
CWE-732
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.